E-27
Cisco Security Appliance Command Line Configuration Guide
OL-12172-03
Appendix E Configuring an External Server for Authorization and Authentication
Configuring an External RADIUS Server
IPSec-Split-DNS-Names
Y
Y
Y
29
String
Single
Specifies the list of secondary
domain names to send to the
client (1-255 characters)
IPSec-Tunnel-Type
Y
Y
Y
30
Integer
Single
1 = LAN-to-LAN
2 = Remote access
IPSec-Mode-Config
Y
Y
Y
31
Boolean
Single
0 = Disabled
1 = Enabled
IPSec-User-Group-Lock
Y
33
Boolean
Single
0 = Disabled
1 = Enabled
IPSec-Over-UDP
Y
Y
Y
34
Boolean
Single
0 = Disabled
1 = Enabled
IPSec-Over-UDP-Port
Y
Y
Y
35
Integer
Single
4001 - 49151, default = 10000
Banner2
Y
Y
Y
36
String
Single
A banner string. Banner2 string
is concatenated to Banner1
string if configured.
PPTP-MPPC-Compression
Y
37
Integer
Single
0 = Disabled
1 = Enabled
L2TP-MPPC-Compression
Y
38
Integer
Single
0 = Disabled
1 = Enabled
IPSec-IP-Compression
Y
Y
Y
39
Integer
Single
0 = Disabled
1 = Enabled
IPSec-IKE-Peer-ID-Check
Y
Y
Y
40
Integer
Single
1 = Required
2 = If supported by peer
certificate
3 = Do not check
IKE-Keep-Alives
Y
Y
Y
41
Boolean
Single
0 = Disabled
1 = Enabled
IPSec-Auth-On-Rekey
Y
Y
Y
42
Boolean
Single
0 = Disabled
1 = Enabled
Table E-5
Security Appliance Supported RADIUS Attributes and Values (continued)
Attribute Name
VPN
3000
ASA
PIX
Attr.
#
Syntax/
Type
Single
or
Multi-
Valued
Description or Value
Summary of Contents for 500 Series
Page 38: ...Contents xxxviii Cisco Security Appliance Command Line Configuration Guide OL 12172 03 ...
Page 45: ...P A R T 1 Getting Started and General Information ...
Page 46: ......
Page 277: ...P A R T 2 Configuring the Firewall ...
Page 278: ......
Page 561: ...P A R T 3 Configuring VPN ...
Page 562: ......
Page 891: ...P A R T 4 System Administration ...
Page 892: ......
Page 975: ...P A R T 5 Reference ...
Page 976: ......